AWS Certified DevOps Engineer – ProfessionalSDLC AutomationMedium

A global e-commerce company uses multiple AWS accounts (development, staging, production) for its microservices architecture. They need to manage application dependencies, including private libraries and third-party packages, consistently across all accounts and environments. They also want to ensure that developers only use approved versions of these dependencies. Which AWS service should they use to centralize and control their application dependencies?

  1. AAWS CodeCommit for versioning private libraries.
  2. BAmazon S3 for storing all dependency archives.
  3. CAWS CodeArtifact as a centralized package repository.
  4. DAWS Systems Manager Parameter Store for dependency versions.
Show answer & explanation

Correct answer: C. AWS CodeArtifact as a centralized package repository.

AWS CodeArtifact is designed to be a centralized, secure, and scalable package repository for various package types (Maven, npm, PyPI, NuGet). It allows organizations to store, publish, and share their private packages and proxy public repositories, ensuring consistent and approved dependency management across accounts.

Why the other options are wrong

  • A. CodeCommit is a Git repository for source code, not a package repository for compiled binaries or resolved dependencies. While private libraries' source code might be in CodeCommit, their packaged artifacts should be in CodeArtifact.
  • B. While S3 can store archives, it lacks the package management features (indexing, versioning, proxying public repositories, format-specific clients) that CodeArtifact offers.
  • D. Parameter Store is for storing configuration values and secrets, not for managing binary application dependencies or package versions in a repository-like manner.

AWS CodeArtifact

A fully managed artifact repository service that makes it easy for organizations to securely store, publish, and share software packages used in their development process.

  • Supports popular package managers (npm, Maven, PyPI, NuGet).
  • Centralizes private and public dependencies.
  • Integrates with AWS CodeBuild, CodePipeline, and IAM.

Memory trick: For dependencies, CodeArtifact is the library for all your books.

More SDLC Automation questions